Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-g92m-rv6c-v268

Опубликовано: 11 сент. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 7.7

Описание

An OS command injection vulnerability in the TDDP module of Deco BE11000 allows an adjacent network attacker to execute arbitrary commands with root privileges by sending a crafted UDP packet.

Successful exploitation may lead to complete device compromise, including unauthorized command execution, modification of device settings, and loss of confidentiality, integrity, and availability

An OS command injection vulnerability in the TDDP module of Deco BE11000 allows an adjacent network attacker to execute arbitrary commands with root privileges by sending a crafted UDP packet.

Successful exploitation may lead to complete device compromise, including unauthorized command execution, modification of device settings, and loss of confidentiality, integrity, and availability

EPSS

Процентиль: 89%
0.03593
Низкий

7.7 High

CVSS4

Дефекты

CWE-78

Связанные уязвимости

nvd
14 дней назад

An OS command injection vulnerability in the TDDP module of Deco BE11000 allows an adjacent network attacker to execute arbitrary commands with root privileges by sending a crafted UDP packet. Successful exploitation may lead to complete device compromise, including unauthorized command execution, modification of device settings, and loss of confidentiality, integrity, and availability

EPSS

Процентиль: 89%
0.03593
Низкий

7.7 High

CVSS4

Дефекты

CWE-78